gen‑ai.news
← Back
Image

Google's SynthID watermark is hard to break, but it doesn't solve AI disinformation

Google's SynthID watermark is hard to break, but it doesn't solve AI disinformation

Google's SynthID is a watermarking system designed to tag AI-generated content - images, audio, and more - with an invisible signal that persists through many of the edits and conversions a file might undergo after it leaves the model. Recent testing covered by Ars Technica finds that the technology does what it claims reasonably well: the watermark holds up against resizing, screenshots, compression artifacts, and similar transformations that would strip out simpler metadata-based labels.

The technical approach differs from attaching external metadata to a file. SynthID embeds its signal directly into the pixel values or audio waveform in a way that is meant to be imperceptible to a human viewer or listener but detectable by Google's verification tools. That design means the mark travels with the content itself rather than sitting in a header that any basic editor can strip away.

Where the system runs into trouble is not primarily technical. The harder problem is one of coverage and incentives. SynthID only tags content that comes out of Google's own models - Imagen, Lyria, and others in its ecosystem. Content produced by competing generators, open-source models, or fine-tuned derivatives carries no such mark. A determined bad actor can simply choose a tool that doesn't watermark at all, and the detection infrastructure offers no help in that case.

There is also the question of what detection actually achieves once disinformation is already spreading. Verification requires someone to actively submit content to a checking tool, and that step is unlikely to happen at the speed misinformation moves on social media. Platforms would need to integrate detection pipelines directly, and even then, unmarked AI content would pass through without any flag. The broader takeaway is that watermarking is a useful layer of accountability for good-faith actors and a meaningful forensic tool after the fact, but it is not a barrier that meaningfully slows down those who intend to deceive.

Enjoy this story? Get the next one in your inbox.

Twice a week: the most important stories in generative image and video AI, distilled into a 2-minute read.

Free. Unsubscribe any time. No spam, ever.

Your next read

Trump Shares Doctored Photo That Appears to Replace Official With Natalie Harp
Image

Trump Shares Doctored Photo That Appears to Replace Official With Natalie Harp

President Trump shared a doctored photo on Truth Social depicting himself alongside Chinese President Xi Jinping, with experts concluding that an official in the original image appears to have been replaced with Trump aide Natalie Harp. The incident adds to a growing pattern of manipulated images circulating at the highest levels of politics. It raises fresh questions about the role of AI-assisted photo editing in shaping public perception of diplomatic events.

You Can Edit Your Photos With Lightroom and Photoshop Inside Google Gemini
Image

You Can Edit Your Photos With Lightroom and Photoshop Inside Google Gemini

Adobe is bringing Lightroom and Photoshop editing capabilities directly into Google Gemini, allowing users to work with its tools without leaving the AI platform. The move extends Adobe's broader strategy of embedding its software into third-party AI environments, following earlier integrations with ChatGPT, Claude, Slack, and Microsoft Copilot.

No image
Image

Edit updates, thumbnail previews, and more

Midjourney has rolled out a set of interface updates on its alpha site, including live style previews that show how a prompt looks across different styles before committing to one. The update also brings thumbnail previews and refinements to the Edit workflow. These changes reflect the team's ongoing work to make the image generation and editing experience more interactive and informed.